From 0ae5c980aab6e988b15498a2e5e070777f23b008 Mon Sep 17 00:00:00 2001 From: miwi Date: Tue, 22 Jan 2008 22:01:46 +0000 Subject: - Document xfce -- multiple vulnerabilities --- security/vuxml/vuln.xml | 32 ++++++++++++++++++++++++++++++++ 1 file changed, 32 insertions(+) (limited to 'security/vuxml') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 6c27160cdabd..968216bcabe9 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,38 @@ Note: Please add new entries to the beginning of this file. --> + + xfce -- multiple vulnerabilities + + + xfce4-panel + libxfce4gui + 4.4.1_1 + + + + +

Gentoo reports:

+
+

A remote attacker could entice a user to install a specially + crafted "rc" file to execute arbitrary code via long strings + in the "Name" and "Comment" fields or via unspecified vectors + involving the second vulnerability.

+
+ +
+ + CVE-2007-6531 + CVE-2007-6532 + http://www.xfce.org/documentation/changelogs/4.4.2 + http://www.gentoo.org/security/en/glsa/glsa-200801-06.xml + + + 2008-01-FIXME + 2008-01-22 + +
+ claws-mail -- insecure temporary file creation -- cgit